CVE-2025-15214: Campcodes Park Ticketing System

Medium severity, CVSS 4.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability was found in Campcodes Park Ticketing System 1.0. The impacted element is the function save_pricing of the file admin_class.php. The manipulation of the argument name/ride results in cross site scripting. The attack may be performed from remote. The exploit has been made public and could be used.

Affected products

  • Campcodes Park Ticketing System: version 1.0 only

Published 2025-12-30. Last modified 2026-10-07.